CVE-2018-21115: Input Validation
Published Apr 22, 2020
·Updated
NETGEAR XR500 devices before 2.3.2.32 are affected by remote code execution by unauthenticated attackers.
Affected Software
2 affected components
Netgear Xr500 Firmware<2.3.2.32
Netgear XR500
Event History
Apr 22, 2020
CVE Published
via MITRE·02:45 PM
Data Sourced
via MITRE·02:45 PM
DescriptionSeverity
Frequently Asked Questions
1
What is the severity of CVE-2018-21115?
CVE-2018-21115 has a high severity rating due to its potential for remote code execution by unauthenticated attackers.
2
How do I fix CVE-2018-21115?
To remediate CVE-2018-21115, update your NETGEAR XR500 device to firmware version 2.3.2.32 or later.
3
Which devices are affected by CVE-2018-21115?
CVE-2018-21115 affects NETGEAR XR500 devices running firmware versions prior to 2.3.2.32.
4
Can CVE-2018-21115 be exploited remotely?
Yes, CVE-2018-21115 can be exploited remotely by unauthenticated attackers, allowing for remote code execution.
5
Is there a workaround for CVE-2018-21115?
There are no specific workarounds for CVE-2018-21115; updating to the latest firmware is the recommended course of action.